-
Marketplace
-
Channel Resources
Articles from this Site
MEGA International Automates Functions with GRC Solution
Eskom Selects SunGard's AvantGard for Integrated Treasury and Risk Management
Xstrata Copper Chooses Brady for Global Risk Management
IBM Signs Agreement to Acquire FilesX
Retail Banks' BI Technology Spending Expected to Reach $9 Billion by 2012
White Papers
Accounting Information Systems, Risk Management and Decision-Making
SOX: Sarbanes-Oxley Act
Mehari
Tracking Limitations to Business Policies: Basel II Compliance as an Opportunity
Using SQL Server 2005 Reporting Services with Hyperion Essbase
Web Seminars
Books
Data Mining Cookbook: Modeling Data for Marketing, Risk and Customer Relationship Management
Risk Management
Risk Management in Banking, 2nd Edition
Risk Management and Analysis: Measuring and Modelling Financial Risk
Project and Program Risk Management: A Guide to Managing Project Risks and Opportunities
Gartner Says CIOs Must Manage IT Risk as Business Risk
While IT has become increasingly central to business success, many enterprises have not adjusted their processes for IT decision making and risk management, according to Gartner, Inc. In addition, increased dependence on the smooth functioning of IT has amplified the business impact of IT risk incidents.
In the book IT Risk:Turning Business Threats into Competitive Advantage, published by Harvard Business School Press, Richard Hunter, group vice president and Gartner fellow in Gartner Executive Programs, and George Westerman, research scientist in the Center for Information Systems Research at the MIT Sloan School of Management, examine how IT risks directly impact business performance and advise business executives on how they can manage IT risk as business risk with business consequences.
IT risk has changed, said Hunter, who presenting findings from the book during the Gartner Symposium/ITxpo 2007. IT risk incidents harm constituencies within and outside companies. They damage corporate reputations and expose weaknesses in companies management teams. Most importantly, uncontrolled IT risk dampens an organizations ability to compete.
The authors defined IT risk as a threat to any of four interrelated business objectives: availability, access, accuracy, agility.
No enterprise can be completely free of IT risk. Like any other risk, IT risk is something to be managed, not eliminated, Hunter said. Management means making trade-offs between risk and return, between the perils a company can bear and the risks it would rather avoid. Until now, business managers have lacked the tools and disciplines to manage IT risk in these ways.
Hunter introduced three disciplines that enterprises must master to manage IT risk effectively.
>The most dangerous risks are the ones that are never considered, or considered too late, Hunter said. Executives need to look to the future. IT risk management is working the way it should when it is simply part of the way the company does business.
For more information on related topics, visit the following channels:


